Design, implementation, and deployment of the iKP secure electronic payment system

Citation
M. Bellare et al., Design, implementation, and deployment of the iKP secure electronic payment system, IEEE J SEL, 18(4), 2000, pp. 611-627
Citations number
34
Categorie Soggetti
Information Tecnology & Communication Systems
Journal title
IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS
ISSN journal
07338716 → ACNP
Volume
18
Issue
4
Year of publication
2000
Pages
611 - 627
Database
ISI
SICI code
0733-8716(200004)18:4<611:DIADOT>2.0.ZU;2-M
Abstract
This paper discusses the design, implementation, and deployment of a secure and practical payment system for electronic commerce on the Internet. The system is based on the iKP family of protocols-(i = 1, 2, 3)-developed at I DM Research. The protocols implement credit card-based transactions between buyers and merchants while the existing financial network is used for paym ent clearing and authorization. The protocols are extensible and can be rea dily applied to other account-based payment models, such as debit cards. Th ey are based on careful and minimal use of public-key cryptography and can be implemented in either software or hardware. Individual protocols differ in both complexity and degree of security. In addition to being both a precursor and a direct ancestor of the well-kno wn SET standard, iKP-based payment systems have been in continuous operatio n on the Internet since mid-1996. This longevity-as well as the security an d relatively c simplicity of the underlying mechanisms-makes the iKP experi ence unique. For this reason, this paper also reports on, and addresses, a number of practical issues arising in the course of implementation and real -world deployment of a secure payment system.